Логотип exploitDog
bind:CVE-2025-54752
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-54752

Количество 2

Количество 2

nvd логотип

CVE-2025-54752

6 месяцев назад

Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malformed entry and a victim user downloads it as a CSV file and opens it in the user's environment, the embedded code may be executed.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-fx25-qh4f-8ghh

6 месяцев назад

Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malformed entry and a victim user downloads it as a CSV file and opens it in the user's environment, the embedded code may be executed.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-54752

Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malformed entry and a victim user downloads it as a CSV file and opens it in the user's environment, the embedded code may be executed.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-fx25-qh4f-8ghh

Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malformed entry and a victim user downloads it as a CSV file and opens it in the user's environment, the embedded code may be executed.

CVSS3: 6.5
0%
Низкий
6 месяцев назад

Уязвимостей на страницу